Quantcast
Channel: lkml.org : Shesha Sreenivasamurthy
Viewing all articles
Browse latest Browse all 1267

Re: [kernel-hardening] [RFC V2 4/6] lib: vsprintf: default kptr_re ...

$
0
0
Linus Torvalds writes: (Summary) IOW, the old "open /proc/kallsyms as a normal user, then make it stdin for some suid-root program that can be fooled to output it probably works on it.
works on it.
So kptr_restrict ends up being entirely the wrong thing to do there. And as mentioned, that will just make people use %x instead, or randomly sprinkle the new "I didn't really mean this" modifiers like the already discussed pr_debug() case.
the already discussed pr_debug() case.
So even when kptr_restrict "works", it ends up just fighting itself.

Viewing all articles
Browse latest Browse all 1267

Trending Articles